๐ฒ๐ฝ
octageeks.com
2026-09-14 04:09:32
(2 days ago)
Wordpress malicious attack:[octamissingdomain]
Web App Attack
Anonymous
2026-09-13 23:59:20
(2 days ago)
Aggressive web scan
Web App Attack
๐ฉ๐ช
Live Home Cams
2026-09-13 21:07:50
(2 days ago)
WebApp brute force attack detected. Multiple file scanning attempts from 34.74.210.137. Detected by ...
show more
WebApp brute force attack detected. Multiple file scanning attempts from 34.74.210.137. Detected by fail2ban.
show less
Web App Attack
Brute-Force
๐ต๐ฑ
strefapi_com
2026-09-13 21:06:19
(2 days ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
๐ซ๐ท
Allolatr
2026-09-13 21:03:46
(2 days ago)
Sep 13 23:03:45 [redacted] j443: ::ffff:34.74.210.137 [redacted].com "-" 400 146 "-" "-" Sep 13 23:0 ...
show more
Sep 13 23:03:45 [redacted] j443: ::ffff:34.74.210.137 [redacted].com "-" 400 146 "-" "-" Sep 13 23:03:45 [redacted] j443: ::ffff:34.74.210.137 [redacted].com "-" 400 146 "-" "-" Sep 13 23:03:45 [redacted] j443: ::ffff:34.74.210.137 [redacted].com "-" 400 146 "-" "-"
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
factor1
2026-09-13 20:36:04
(2 days ago)
CrowdSec at apollo Reports Abuse
Web App Attack
Anonymous
2026-09-13 20:09:49
(2 days ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
[email protected]
2026-09-13 15:42:42
(2 days ago)
CrowdSec ban: crowdsecurity/unifi-flood-detection (duration: 71h59m59s)
Port Scan
๐บ๐ธ
robotstxt
2026-09-13 14:39:35
(2 days ago)
34.74.210.137 - - [13/Sep/2026:14:38:29 +0000] "GET /.vite/manifest.json HTTP/2.0" 403 36224 "-" "Mo ...
show more
34.74.210.137 - - [13/Sep/2026:14:38:29 +0000] "GET /.vite/manifest.json HTTP/2.0" 403 36224 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" "34.74.210.137" edge="162.159.106.182"
34.74.210.137 - - [13/Sep/2026:14:38:29 +0000] "GET /@fs/home/ec2-user/.aws/credentials?raw?? HTTP/2.0" 403 36224 "-" "Mozilla/5.0 (compatible; Meta-ExternalAgent/1.0; +https://developers.facebook.com/docs/sharing/webmasters/crawler)" "34.74.210.137" edge="104.22.24.5"
34.74.210.137 - - [13/Sep/2026:14:38:29 +0000] "GET /@fs/home/ubuntu/.aws/credentials?raw?? HTTP/2.0" 403 36224 "-" "Mozilla/5.0 (compatible; xAI-Grok/1.0; +https://x.ai/)" "34.74.210.137" edge="104.22.24.5"
34.74.210.137 - - [13/Sep/2026:14:38:30 +0000] "GET /@fs/root/.aws/credentials?raw?? HTTP/2.0" 403 36224 "-" "Mozilla/5.0 (compatible; ChatGLM-Spider/1.0; +https://zhipuai.cn/)" "34.74.210.137" edge="104.22.24.5"
34.74.210.137 - - [13/Sep/2026:14:38:33 +0000] "GET /
...
show less
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-09-13 13:08:00
(3 days ago)
Fail2Ban - [WAF]ModSecurity OWASP CRS rule violation on nginx-modsecurity ... [ice02]
Hacking
SQL Injection
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 12:48:47
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 34.74.210.137 (137.210.74.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.74.210.137 (137.210.74.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 08:48:43.447433 2026] [security2:error] [pid 16891:tid 16891] [client 34.74.210.137:35846] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||avalderlaw.com|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "avalderlaw.com"] [uri "/rclone.conf"] [unique_id "aqabq9uGCc3T9ka_BWMP_QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-13 12:46:43
(3 days ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-13 11:21:27
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 34.74.210.137 (137.210.74.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.74.210.137 (137.210.74.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 07:21:23.316489 2026] [security2:error] [pid 24553:tid 24553] [client 34.74.210.137:45944] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||arriagarealestate.com|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "arriagarealestate.com"] [uri "/rclone.conf"] [unique_id "aqaHM8m6GOaN0FHyRpwrsQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 10:51:52
(3 days ago)
(mod_security) mod_security (id:210580) triggered by 34.74.210.137 (137.210.74.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210580) triggered by 34.74.210.137 (137.210.74.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 06:51:42.318450 2026] [security2:error] [pid 31985:tid 31985] [client 34.74.210.137:0] ModSecurity: Access denied with code 403 (phase 2). Matched phrase ".ssh/id_rsa" at ARGS:filename. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "57"] [id "210580"] [rev "2"] [msg "COMODO WAF: OS File Access Attempt||antitribu.com|F|2"] [data "Matched Data: .ssh/id_rsa found within ARGS:filename: file:/root/.ssh/id_rsa"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "antitribu.com"] [uri "/__vite_rsc_findSourceMapURL"] [unique_id "aqaAPn5385uFEzO4qxTShwAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 10:33:49
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 34.74.210.137 (137.210.74.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.74.210.137 (137.210.74.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 06:33:44.549261 2026] [security2:error] [pid 29298:tid 29298] [client 34.74.210.137:50316] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||andiamocomputers.com|F|2"] [data ".key"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "andiamocomputers.com"] [uri "/host.key"] [unique_id "aqZ8CLBiaq_AV0XoQoflJAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack